US2025217347A1PendingUtilityA1
Scanning layer for unproteced user-defined functions
Est. expiryDec 31, 2043(~17.4 yrs left)· nominal 20-yr term from priority
Inventors:Ashish Chaube
G06F 16/2365
57
PatentIndex Score
0
Cited by
0
References
0
Claims
Abstract
A system includes a plurality of processing nodes. at least one processing node of the plurality of processing nodes receives a user-defined function. The at least one processing node scans source code of the user-defined function. The at least one processing node, in response to identification of at least one of a plurality of predetermined conditions in the user-defined function during the scan, requires that the UDF is executed at a secure server outside of the plurality of processing nodes.
Claims
exact text as granted — not AI-modified1 . A system comprising:
a plurality of processing nodes, wherein at least one processing node of the plurality of processing nodes is configured to: receive a user-defined function (“UDF”); scan source code of the UDF; and in response to identification of at least one of a plurality of predetermined conditions in the user-defined function during the scan, require that the UDF is executed at a secure server outside of the plurality of processing nodes, wherein the at least one of a plurality of conditions is associated with unauthorized content of the UDF.
2 . The system of claim 1 , wherein the at least one processing node is further configured to, in response to absence of the plurality of predetermined conditions, direct the UDF to be executed by one or more of the plurality of processing nodes.
3 . The system of claim 1 , wherein the plurality of predetermined conditions comprises operating system level calls, access check of non-permissible directories, and existence of source code that causes corruption or deletion of files or directories.
4 . The system of claim 1 , wherein the at least one processing node is configured to identify a corrective action for the UDF that is executed at the secure server outside of the plurality of processing nodes.
5 . A method comprising:
receiving, with a processor, a user-defined function (“UDF”); scanning, with the processor, source code of the user-defined function; and in response to identification of at least one of a plurality of predetermined conditions in the user-defined function during the scan, requiring, with the processor, that the UDF is executed at a secure server outside of the plurality of processing nodes, wherein the at least one of a plurality of conditions is associated with unauthorized content of the UDF.
6 . The method of claim 5 , further comprising, in response to absence of the plurality of predetermined conditions, directing, with the processor, the UDF to be executed by one or more of the plurality of processing nodes.
7 . The method of claim 5 , wherein the plurality of predetermined conditions comprises operating system level calls, access check of non-permissible directories, and existence of source code that causes corruption or deletion of files or directories.
8 . The method of claim 5 , further comprising identifying, with the processor, a corrective action for the UDF that is executed at the secure server outside of the plurality of processing nodes.
9 . A non-transitory computer-readable medium encoded with a plurality of instructions executable by a processor, the plurality of instructions comprising:
instructions to receive a user-defined function; instructions to scan source code of the user-defined function (“UDF”); and in response to identification of at least one of a plurality of predetermined conditions in the user-defined function during the scan, instructions to require that the UDF is executed at a secure server outside of the plurality of processing nodes, wherein the at least one of a plurality of conditions is associated with unauthorized content of the UDF.
10 . The non-transitory computer-readable medium of claim 9 , wherein the plurality of instructions further comprises, in response to absence of the plurality of predetermined conditions, instructions to direct the UDF to be executed by one or more of the plurality of processing nodes.
11 . The non-transitory computer-readable medium of claim 9 , wherein the plurality of predetermined conditions comprises operating system level calls, access check of non-permissible directories, and existence of source code that causes corruption or deletion of files or directories.
12 . The non-transitory computer-readable medium of claim 9 , wherein the plurality of instructions further comprises instructions to identify a corrective action for the UDF that is executed at the secure server outside of the plurality of processing nodes.Join the waitlist — get patent alerts
Track US2025217347A1 — get alerts on status changes and closely related new filings.
We store only your email — no account needed. See our privacy policy.